In 1997, when ESET conducted its first experiments using neural networks for threat detection, the IT landscape was completely different. Internet connections were limited, and threat actors were mostly hobbyists, researchers, or script kiddies—developing macro viruses and worms to compromise servers and desktops.

Fast-forward to ESET World 2026, and the company has massively expanded its arsenal of machine learning and detection capabilities; but the world is almost unrecognizable. Billions of people and devices are connected, cloud services underpin daily life, and yesterday’s script kiddies have evolved into sophisticated cybercriminal organizations offering malware-as-a-service (MaaS) to anyone willing to pay. 

Their targets now extend across the entire digital ecosystem—from endpoints and cloud workloads to IoT devices and critical infrastructure. And adding a new dimension to the threat landscape is artificial intelligence, a powerful tool, which is flipping the script on what it means to remain truly cyber-resilient.

Key points of this article:

  • Digital opportunities created by AI adoption have surged, making it an effective co-worker, but also a formidable adversary.
  • Cybersecurity has always been about keeping defenses a step ahead of attackers, but AI is making defenses more porous, and more difficult to account for. Protection now needs to cover both entry and exit points for users.
  • To stay proactively resilient, cybersecurity needs to jump the AI gap and establish a perimeter for the users to work confidently within.
  • ESET is extending its ESET PROTECT platform with ESET AI Security capabilities, adding ESET AI Agent Security, ESET AI Behavioral Monitoring, and ESET AI Conversation Security.*
  • Together, the new sovereign ESET AI portfolio delivers cybersecurity on top of modern IT innovation.

The AI era, and how it’s changing the cybersecurity landscape

The rules of cybersecurity are being rewritten. Attackers are operating at greater speed and scale than ever before, using automation to find and exploit weaknesses before organizations have a chance to respond. In the ESET SMB Cyber Readiness Index 2026, vulnerability exploits and phishing are the top two reasons for cyber incidents (see Figure 1).

stacked chart of cyber incident reasons

Figure 1 Reasons for cyber incidents (Source: ESET SMB Cyber Readiness Index 2026)

Why pick these two specifically?

News reports have shown that AI agents have demonstrated a great deal of intelligence when put to the test identifying vulnerabilities in software products. Reportedly, Anthropic’s Mythos found as many as 271 vulnerabilities in the Firefox browser app alone, and over 23,000 other vulnerabilities across more than 1,000 open-source projects.

That’s just one tool. And, while Project Glasswing’s ethos is respectable, and aware of the potential misuse of the best models (noted by the U.S. government as well), a question remains: Should such tools be available to the public at all? What if those same models were used to find and create exploits by a bad actor? 

In early 2024, Microsoft and OpenAI reported that they had “not yet observed particularly novel or unique AI-enabled attack techniques,” and described AI largely as a productivity tool for threat actors. But, oops! Just two years later, security researchers from Google are reporting on what may be the first AI-developed zero-day exploit, and ESET Research discovers PromptLock, the first AI-powered ransomware, as well as PromptSpy, an Android malware abusing gen AI in its execution flow.

Thus, as is often the case, tech assumptions age like milk.

Don’t forget about phishing

Let’s circle back to phishing, though. Handmade lures are a thing of the past. AI has vastly accelerated the production of phishing material, in multiple languages, globalizing its potential. Some reports point to AI-supported phishing campaigns accounting for more than 80% of observed global social engineering activity1. IBM says that AI has made phishing so effective that it now takes just five minutes to craft an email, down from the original 16 hours.

In related news, Gartner reports that as many as 62% of organizations have experienced a deepfake attack—using synthetic media generated or manipulated using AI to appear real.

These numbers are rather high. And, while there are security modules capable of detecting phishing (such as mail security), they’re not foolproof methods. That brings us to yet another problem of the AI age: detection complexity.

(Un)supervised, (un)seen, and (mis)understood

It would be one thing if AI were confined to uses at two opposite poles: defenders and attackers; but that’s not what makes the matter so complicated. As ESET’s 2026 SMB Cyber Readiness Index shows, many SMBs have onboarded AI tools into their systems and are quite aware of the threats they might pose—but they struggle to account for them (Figure 2). 

An image discussing how SMBs approach AI adoption
Figure 2 The relationship between SMBs and AI (Source: ESET SMB Cyber Readiness Index 2026).

IBM’s findings2 detailing how 97% of organizations reporting an AI-related security incident lacked proper AI access controls, and 63% lacked AI governance policies corroborate this. There’s a lot of pressure here to adapt, as even regulators have switched gears to address AI risks in their earnest. The U.S. went as far as to block two market-leading companies from temporarily selling their models to foreign citizens, citing abuse-related risks.

But, wait a minute: abuse by whom? Hackers? Apparently. And yet, this doesn’t address a wider issue at hand, where the development of AI models is moving so quickly that, not only are companies unprepared to properly secure them, but many end users are exposing themselves to new risks as well. 

Artificial ignorance

The democratization of AI has put powerful capabilities into the hands of everyone from business users to hobbyists, students, and so-called “vibe coders,” building applications with little formal security or software development experience. 

While this accessibility is one of AI’s greatest strengths, it also creates a growing skills gap: People can now deploy AI-powered workflows—such as agentic AI skills via a tool like OpenClaw—and connect models to sensitive data, or even build production-grade tools long before they fully understand the security, privacy, and governance implications.

Oftentimes, IT security admins may not know which AI tools are being used, what data is being uploaded, whether generated outputs are safe, or whether AI components introduced into workflows can be trusted. 

For example, ESET recently analyzed 900,000 AI3 skills from popular repositories, and found that 25,000 were suspicious and over 3,000 were outright malicious. The latter can exfiltrate data, download and execute malware, override user instructions, subtly alter an agent’s behavior over time, or even modify the skill itself.

AI skills, to put it differently, represent an extension of an AI’s context, and every extension of said context is an attack vector. 

Considering how easy it is to download these skills, and via the autonomous nature of platforms that use them, you can see where the problem is.

As such, AI is turning every interaction into a potential security consideration. Prompts, uploaded files, generated code, agents, plugins, and skills all create new paths into business systems and data. The result is a rapidly expanding attack surface—one that many organizations are growing faster than they can govern.

In places like Italy, Czechia, and Slovakia, unapproved AI platform use is actually more common4 than policies restricting it.

How to survive the AI era securely?

In many ways, cybersecurity has become harder for customers to understand and more difficult to run, and AI considerably ups the stakes.

A chart of the biggest SMB cybersecurity challenges
Figure 3 The biggest cybersecurity challenges for SMBs (Source: ESET SMB Cyber Readiness Index 2026).

Lots of organizations know that both security and AI are important, but they still struggle to make sense of the terminology, the categories, and the growing number of tools they are expected to use (Figure 3). This creates a practical gap5: Customers may procure more tech tools, but they still lack resources to manage them effectively.

“In an era defined by AI-powered innovation and AI-powered threats, success requires investing in what works. The organizations leading this transitional period aren’t the ones with the biggest security budgets or the most ambitious AI strategies. They’re the ones that align security with business outcomes, give people the context to make smarter decisions, and build on actual observations, not assumptions for resilience,” said Michal Jankech, Vice President, Enterprise & SMB/MSP.

For SMBs and mid-market organizations, the goal is simple: Make security practical, scalable, and ready for an AI-driven world.

Making security “work” for the AI era

AI represents a paradigm shift. It opens an entirely new landscape of threats, where large language models, AI agents, AI-generated code, AI skills, model supply chains, and AI-driven automation all create new risks that traditional security models were not designed to address. Therefore, introducing more alerts, more dashboards, and more complexity would just add more fuel to the fire.

So, what can be done? Well, ESET has long focused on the continuous refinement of its AI technologies for threat detection, endpoint protection, and backend intelligence, making security simply comprehensive. But, while these technologies enable ESET solutions to work smarter, individual, customer-based use of AI requires a separate dimension of security. 

ESET PROTECT: Placing customers first in the AI world

Now, ESET PROTECT doesn’t need deeper introduction because it’s core to the ESET portfolio and has been available for years. However, it requires a bit of realignment to better reflect the needs of customers, helping them evolve and reach secure outcomes in the face of modern AI-enabled threats.

The enablers of these outcomes are novel modules focusing on opening ESET PROTECT up to cover the entire AI scope with new ESET AI Security modules:

ESET AI Agent Security

ESET AI Agent Security is a new security layer within ESET endpoint security applications, developed specifically to address threats coming through the AI ecosystem.

As autonomous AI agents access files, download components, call external services, use repositories, interact with code, or rely on skills and plugins, they may introduce malicious or compromised elements into the customer environment. 

AI Agent Security helps protect against this risk by inspecting AI-related components across the entire AI supply chain, including apps, agents, skills, repositories, code, scripts, MCP servers, external URLs, and multi-stage download chains.

ESET AI Behavioral Monitoring

ESET AI Behavioral Monitoring works closely with AI Agent Security, but focuses on what autonomous AI agents do, rather than only on what they access or download. So, while AI Agent Security helps inspect components and supply-chain activity, AI Behavioral Monitoring focuses on the behavior and actions of autonomous agents instead. It is designed to detect and block malicious or suspicious activity from AI agents, such as agents that attempt to access inappropriate resources, run unsafe actions, or behave outside the expected scope of their task.

For customers, this creates two levels of control. Organizations may choose to block certain AI agents via rules in ESET PROTECT XDR outright, and, where AI agents are permitted, suspicious behavior can be flagged for investigation as a dedicated incident.

ESET AI Security in practice

The combination of the above security features provides a prevention-first approach, in which ESET not only reacts to the launch of an AI skill, but it also proactively scans for malicious ones. 

For example, in the event that there is a safe URL in an AI skill, and later, someone places malicious content on that same safe URL, our technologies should still provide protection afterward whenever there is an attempt to access such a URL, thanks to the way our detection tech and features are interconnected.

ESET AI Conversation Security*

ESET AI Conversation Security protects interactions between end users and large language models. Its purpose is to add an extra security layer around AI conversations, helping to protect users from malicious outputs, and helping to reduce the risk of unsafe prompting or accidental data leakage by:

  • Scanning URLs included in LLM responses and flagging content originating from phishing, malicious, or unwanted websites
  • Scanning scripts generated by LLMs to help prevent users from running malicious code on their devices
  • Flagging prompts that contain sensitive information such as private keys, access tokens, or other high-risk data
  • Identifying prompts with malicious intent, such as exfiltration or attempts to remove safety controls
  • Checking uploaded files and metadata for sensitive content tags, such as Confidential or Internal, flagging potential risks before sensitive material is shared with a public or unapproved AI model

Severe detections are reported as incidents, and lesser ones as indicators, in ESET PROTECT, giving administrators visibility and investigation context.

“Together, these additions make ESET PROTECT more complete, more relevant, and more aligned to the real-world needs of businesses in the AI age,” said Kamil Pšenák, Senior Product Manager at ESET.

Ready, set, AI secure

The key to being confident in the current era is to be prepared. It’s a simple statement, which doesn’t state much, but it’s entirely correct. Problem is, cybersecurity is still just catching up with AI, which isn’t optimal for customers.

Solving this problem, though, requires a lot of R&D. Or an innate ability to understand what artificial intelligence brings to the table. ESET has both. With ESET AI Technology and ESET AI Security bringing better detection tech and AI workflow protection to the table, there has never been a better time to go all in on AI—with security on one’s side.

*Currently only available in the United States, Italy, and Slovakia

AI_Security_GDA_970x250

FAQ: ESET B2B in the AI era

How is AI changing the cybersecurity landscape?

AI is transforming cybersecurity on both sides of the battlefield. Defenders use AI to improve threat detection, automate analysis, and accelerate response times. At the same time, attackers use AI to create more convincing phishing campaigns, discover vulnerabilities faster, generate malicious code, and automate cyberattacks at scale.

What are the biggest AI-related cybersecurity risks for organizations?

Common AI-related risks include data leakage through AI prompts and file uploads, malicious or compromised AI agents and plugins, AI-generated phishing attacks, unsafe AI-generated scripts and code, unauthorized AI tool usage (shadow AI) or AI supply chain attacks involving models, repositories, skills, and external integrations.

Are AI-generated phishing attacks more dangerous than traditional phishing?

Yes. AI enables threat actors to create better personalized, grammatically correct, and multilingual phishing messages in minutes. This increases the scale and sophistication of phishing campaigns, making fraudulent communications harder for users to identify.

Can ESET help organizations manage AI-related security risks?

Of course. ESET PROTECT now provides centralized visibility into AI-related detections and incidents, helping security teams investigate, monitor, and respond to threats affecting users, endpoints, and AI-enabled workflows, thanks to ESET AI Security tech.

What is ESET AI Security?

ESET AI Security is a set of capabilities designed to help organizations safely adopt AI technologies. Integrated with the ESET PROTECT platform, it provides visibility and protection across AI agents, AI behaviors, and AI user interactions.

How is ESET different from other AI security providers?

ESET combines decades of cybersecurity expertise, advanced AI-powered detection technologies, and dedicated AI security capabilities within a unified platform. This approach helps organizations secure both traditional IT environments and emerging AI-powered workflows through a single pane of glass. Thus, ESET protects employees who use AI, provides visibility into and security for AI agents themselves, safeguards organizational data, and continuously evaluates risks to help defend against evolving threats, even when previously trusted resources become compromised.

How can businesses get started with AI security?

Organizations should begin by evaluating how AI is currently being used, identifying gaps in visibility and governance, and implementing solutions that protect AI conversations, AI agents, and AI-powered workflows. ESET AI Security can help businesses build a secure foundation for AI adoption while maintaining operational resilience.

 

Additional references:
[1] European Union Agency for Cybersecurity (ENISA). (October 2025). ENISA Threat Landscape 2025 (p. 13). Retrieved July 9, 2026, from https://www.enisa.europa.eu/sites/default/files/2025-11/ENISA%20Threat%20Landscape%202025.pdf
[2] IBM Security. (2025). Cost of a Data Breach Report 2025 (p. 7). Retrieved July 9, 2026, from https://www.ibm.com/reports/data-breach
[3] ESET. (May 2026). ESET SMB Cybersecurity Readiness Index 2026 (p. 23). Retrieved July 10, 2026, from https://web-assets.esetstatic.com/wls/en/papers/resources/eset-smb-cyber-readiness-index-2026-global-edition.pdf
[4] ESET Research. (July 2026). ESET Threat Report H1 2026 (pp. 6–9). Retrieved July 10, 2026, from https://web-assets.esetstatic.com/wls/en/papers/threat-reports/eset-threat-report-h12026.pdf
[5] Ibid. (p. 45.)